Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

Introducing CodeCapy: the only PR bot that actually tests your code - an open-source GitHub app that generates end-to-end UI tests based on code changes and executes tests autonomously in isolated Scrapybara Ubuntu desktops. Try CodeCapy for your repos with the link below!

18,254 görüntüleme • 1 yıl önce •via X (Twitter)

9 Yorum

Scrapybara profil fotoğrafı
Scrapybara1 yıl önce

Check out the repo here, stars and contributions welcome!

Semaphore profil fotoğrafı
Semaphore1 yıl önce

Jenkins is a classic. Semaphore Open Source is the next step. Built for speed. Designed for simplicity. Ready to see what’s next for CI/CD? Discover more:

justin profil fotoğrafı
justin1 yıl önce

it's finally alive 🥹

jonathan liu profil fotoğrafı
jonathan liu1 yıl önce

all the other QA automation tools that use AI better watch out 😤

daniel profil fotoğrafı
daniel1 yıl önce

Huge

vly.ai profil fotoğrafı
vly.ai1 yıl önce

Huge stuff

Crispy profil fotoğrafı
Crispy1 yıl önce

Sick

Ujjwal 𝕏 profil fotoğrafı
Ujjwal 𝕏1 yıl önce

@ycombinator Interesting

. profil fotoğrafı
.1 yıl önce

🔥

Benzer Videolar

What they don't tell you about vibe coding: • Moltbook exposed 1.5M auth tokens. The owner hadn't written a single line of code. • Tea App leaked 72,000 government IDs. The database was just open, no sophisticated hack needed. • A researcher took control of a journalist's computer through her own vibe-coded game, without a single click. The code ran fine in all three cases, tests passed, reviews looked clean, and nothing raised a flag. That's the problem nobody is talking about. Teams are shipping faster than ever. AI writes the code. CI catches build failures. Tests catch regressions. Observability catches outages. But nobody is asking the one question that actually matters: What can an attacker do with this, right now? Because the bottleneck is no longer writing code. It's understanding what that code actually exposes once it's live. PR reviews miss auth edge cases. Unit tests don't probe broken access control. Staging environments don't simulate adversarial behavior. And business logic flaws look completely fine until someone decides to break them on purpose. Strix is an open-source tool that fills this gap. It reviews your running app the way an attacker would: - Crawls the app and maps every exposed route and flow - Probes abuse paths dynamically, not just at build time - Returns findings with proof-of-concepts and suggested fixes Strix was benchmarked against 200 real companies and open-source repos, where it found 600+ verified vulnerabilities including assigned CVEs. It's designed to fit into how modern teams already work. Run it before a release, after major changes, or continuously as the app evolves. If your team is shipping AI-generated code and you don't currently have a way to answer "what does this actually expose", it's worth looking at. GitHub link in the next tweet.

Akshay 🚀

52,267 görüntüleme • 2 ay önce